Solutions:
Use the following certutil command in client CMD:
certutil -setreg chain\EnableWeakSignatureFlags 8
screen appears:
C:\Users\Administrator> 8 certutil – setreg chain \ EnableWeakSignatureFlags
\ Software \ Microsoft \ Cryptography \ OID EncodingType0 \ CertDllCreateCertificateChainEngine \ Config \ EnableWeakSignatureFlags:
the new values: EnableWeakSignatureFlags REG_DWORD = 8 CertUtil: -setreg command completed successfully.
The CertSvc service may need to be restarted for the changes to take effect.
then open EM with IE to
related search: WINDOWS certificate management CERTUTIL